Skip to content

Commit 632c6ca

Browse files
fix(deps): resolve tar DoS vulnerability GHSA-f5x3-32g6-xq36
TICKET: DX-1563
1 parent 836a5e4 commit 632c6ca

File tree

2 files changed

+4
-43
lines changed

2 files changed

+4
-43
lines changed

package.json

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -97,6 +97,7 @@
9797
"**/avalanche/**/ws": "8.18.3",
9898
"**/ethers/**/ws": "7.5.10",
9999
"**/swarm-js/**/ws": "5.2.4",
100+
"**/swarm-js/**/tar": "6.2.1",
100101
"serialize-javascript": "^6.0.2",
101102
"@grpc/grpc-js": "^1.12.6",
102103
"request": "npm:@cypress/[email protected]",

yarn.lock

Lines changed: 3 additions & 43 deletions
Original file line numberDiff line numberDiff line change
@@ -8627,11 +8627,6 @@ chokidar@^4.0.0:
86278627
dependencies:
86288628
readdirp "^4.0.1"
86298629

8630-
chownr@^1.1.4:
8631-
version "1.1.4"
8632-
resolved "https://registry.npmjs.org/chownr/-/chownr-1.1.4.tgz"
8633-
integrity sha512-jJ0bqzaylmJtVnNgzTeSOs8DPavpbYgEr/b0YL8/2GO3xJEhInFmhKMUnEJQjZumK7KXGFhUy89PrsJWlakBVg==
8634-
86358630
chownr@^2.0.0:
86368631
version "2.0.0"
86378632
resolved "https://registry.npmjs.org/chownr/-/chownr-2.0.0.tgz"
@@ -11912,13 +11907,6 @@ fs-extra@^8.1.0:
1191211907
jsonfile "^4.0.0"
1191311908
universalify "^0.1.0"
1191411909

11915-
fs-minipass@^1.2.7:
11916-
version "1.2.7"
11917-
resolved "https://registry.npmjs.org/fs-minipass/-/fs-minipass-1.2.7.tgz"
11918-
integrity sha512-GWSSJGFy4e9GUeCcbIkED+bgAoFyj7XF1mV8rma3QW4NIqX9Kyx79N/PF61H5udOV3aY1IaMLs6pGbH71nlCTA==
11919-
dependencies:
11920-
minipass "^2.6.0"
11921-
1192211910
fs-minipass@^2.0.0, fs-minipass@^2.1.0:
1192311911
version "2.1.0"
1192411912
resolved "https://registry.npmjs.org/fs-minipass/-/fs-minipass-2.1.0.tgz"
@@ -15193,14 +15181,6 @@ minipass-sized@^1.0.3:
1519315181
dependencies:
1519415182
minipass "^3.0.0"
1519515183

15196-
minipass@^2.6.0, minipass@^2.9.0:
15197-
version "2.9.0"
15198-
resolved "https://registry.npmjs.org/minipass/-/minipass-2.9.0.tgz"
15199-
integrity sha512-wxfUjg9WebH+CUDX/CdbRlh5SmfZiy/hpkxaRI16Y9W56Pa75sWgd/rvFilSgrauD9NyFymP/+JFV3KwzIsJeg==
15200-
dependencies:
15201-
safe-buffer "^5.1.2"
15202-
yallist "^3.0.0"
15203-
1520415184
minipass@^3.0.0, minipass@^3.1.1, minipass@^3.1.6:
1520515185
version "3.3.6"
1520615186
resolved "https://registry.npmjs.org/minipass/-/minipass-3.3.6.tgz"
@@ -15218,13 +15198,6 @@ minipass@^5.0.0:
1521815198
resolved "https://registry.npmjs.org/minipass/-/minipass-7.1.2.tgz"
1521915199
integrity sha512-qOOzS1cBTWYF4BH8fVePDBOO9iptMnGUEZwNc/cMWnTV2nVLZ7VoNWEPHkYczZA0pdoA7dl6e7FL659nX9S2aw==
1522015200

15221-
minizlib@^1.3.3:
15222-
version "1.3.3"
15223-
resolved "https://registry.npmjs.org/minizlib/-/minizlib-1.3.3.tgz"
15224-
integrity sha512-6ZYMOEnmVsdCeTJVE0W9ZD+pVnE8h9Hma/iOwwRDsdQoePpoX56/8B6z3P9VNwppJuBKNRuFDRNRqRWexT9G9Q==
15225-
dependencies:
15226-
minipass "^2.9.0"
15227-
1522815201
minizlib@^2.1.1, minizlib@^2.1.2:
1522915202
version "2.1.2"
1523015203
resolved "https://registry.npmjs.org/minizlib/-/minizlib-2.1.2.tgz"
@@ -19703,22 +19676,9 @@ tar-stream@~2.2.0:
1970319676
inherits "^2.0.3"
1970419677
readable-stream "^3.1.1"
1970519678

19706-
tar@^4.0.2:
19707-
version "4.4.19"
19708-
resolved "https://registry.npmjs.org/tar/-/tar-4.4.19.tgz"
19709-
integrity sha512-a20gEsvHnWe0ygBY8JbxoM4w3SJdhc7ZAuxkLqh+nvNQN2IOt0B5lLgM490X5Hl8FF0dl0tOf2ewFYAlIFgzVA==
19710-
dependencies:
19711-
chownr "^1.1.4"
19712-
fs-minipass "^1.2.7"
19713-
minipass "^2.9.0"
19714-
minizlib "^1.3.3"
19715-
mkdirp "^0.5.5"
19716-
safe-buffer "^5.2.1"
19717-
yallist "^3.1.1"
19718-
19719-
tar@^6.1.0, tar@^6.1.11, tar@^6.1.2:
19679+
tar@^4.0.2, tar@^6.1.0, tar@^6.1.11, tar@^6.1.2, tar@^6.2.1:
1972019680
version "6.2.1"
19721-
resolved "https://registry.npmjs.org/tar/-/tar-6.2.1.tgz"
19681+
resolved "https://registry.npmjs.org/tar/-/tar-6.2.1.tgz#717549c541bc3c2af15751bea94b1dd068d4b03a"
1972219682
integrity sha512-DZ4yORTwrbTj/7MZYq2w+/ZFdI6OZ/f9SFHR+71gIVUZhOQPHzVCLpvRnPgyaMpfWxxk/4ONva3GQSyNIKRv6A==
1972319683
dependencies:
1972419684
chownr "^2.0.0"
@@ -21534,7 +21494,7 @@ yaeti@^0.0.6:
2153421494
resolved "https://registry.npmjs.org/yaeti/-/yaeti-0.0.6.tgz"
2153521495
integrity sha512-MvQa//+KcZCUkBTIC9blM+CU9J2GzuTytsOUwf2lidtvkx/6gnEp1QvJv34t9vdjhFmha/mUiNDbN0D0mJWdug==
2153621496

21537-
yallist@^3.0.0, yallist@^3.0.2, yallist@^3.1.1:
21497+
yallist@^3.0.2:
2153821498
version "3.1.1"
2153921499
resolved "https://registry.npmjs.org/yallist/-/yallist-3.1.1.tgz"
2154021500
integrity sha512-a4UGQaWPH59mOXUYnAG2ewncQS4i4F43Tv3JoAM+s2VDAmS9NsK8GpDMLrCHPksFT7h3K6TOoUNn2pb7RoXx4g==

0 commit comments

Comments
 (0)